/django/contrib/sessions/middleware.py

https://code.google.com/p/mango-py/ · Python · 43 lines · 35 code · 3 blank · 5 comment · 10 complexity · 40f820f12741ccca802565c32588ec31 MD5 · raw file

  1. import time
  2. from django.conf import settings
  3. from django.utils.cache import patch_vary_headers
  4. from django.utils.http import cookie_date
  5. from django.utils.importlib import import_module
  6. class SessionMiddleware(object):
  7. def process_request(self, request):
  8. engine = import_module(settings.SESSION_ENGINE)
  9. session_key = request.COOKIES.get(settings.SESSION_COOKIE_NAME, None)
  10. request.session = engine.SessionStore(session_key)
  11. def process_response(self, request, response):
  12. """
  13. If request.session was modified, or if the configuration is to save the
  14. session every time, save the changes and set a session cookie.
  15. """
  16. try:
  17. accessed = request.session.accessed
  18. modified = request.session.modified
  19. except AttributeError:
  20. pass
  21. else:
  22. if accessed:
  23. patch_vary_headers(response, ('Cookie',))
  24. if modified or settings.SESSION_SAVE_EVERY_REQUEST:
  25. if request.session.get_expire_at_browser_close():
  26. max_age = None
  27. expires = None
  28. else:
  29. max_age = request.session.get_expiry_age()
  30. expires_time = time.time() + max_age
  31. expires = cookie_date(expires_time)
  32. # Save the session data and refresh the client cookie.
  33. request.session.save()
  34. response.set_cookie(settings.SESSION_COOKIE_NAME,
  35. request.session.session_key, max_age=max_age,
  36. expires=expires, domain=settings.SESSION_COOKIE_DOMAIN,
  37. path=settings.SESSION_COOKIE_PATH,
  38. secure=settings.SESSION_COOKIE_SECURE or None,
  39. httponly=settings.SESSION_COOKIE_HTTPONLY or None)
  40. return response